<html>
<head><meta charset="utf-8"><title>mdbook vulnerability · wg-secure-code · Zulip Chat Archive</title></head>
<h2>Stream: <a href="https://rust-lang.github.io/zulip_archive/stream/146229-wg-secure-code/index.html">wg-secure-code</a></h2>
<h3>Topic: <a href="https://rust-lang.github.io/zulip_archive/stream/146229-wg-secure-code/topic/mdbook.20vulnerability.html">mdbook vulnerability</a></h3>

<hr>

<base href="https://rust-lang.zulipchat.com">

<head><link href="https://rust-lang.github.io/zulip_archive/style.css" rel="stylesheet"></head>

<a name="221538471"></a>
<h4><a href="https://rust-lang.zulipchat.com#narrow/stream/146229-wg-secure-code/topic/mdbook%20vulnerability/near/221538471" class="zl"><img src="https://rust-lang.github.io/zulip_archive/assets/img/zulip.svg" alt="view this post on Zulip" style="width:20px;height:20px;"></a> Tony Arcieri <a href="https://rust-lang.github.io/zulip_archive/stream/146229-wg-secure-code/topic/mdbook.20vulnerability.html#221538471">(Jan 04 2021 at 15:39)</a>:</h4>
<p><a href="https://groups.google.com/g/rustlang-security-announcements/c/3-sO6of29O0/m/UL4hAUpDCQAJ">https://groups.google.com/g/rustlang-security-announcements/c/3-sO6of29O0/m/UL4hAUpDCQAJ</a></p>



<a name="221538611"></a>
<h4><a href="https://rust-lang.zulipchat.com#narrow/stream/146229-wg-secure-code/topic/mdbook%20vulnerability/near/221538611" class="zl"><img src="https://rust-lang.github.io/zulip_archive/assets/img/zulip.svg" alt="view this post on Zulip" style="width:20px;height:20px;"></a> Tony Arcieri <a href="https://rust-lang.github.io/zulip_archive/stream/146229-wg-secure-code/topic/mdbook.20vulnerability.html#221538611">(Jan 04 2021 at 15:40)</a>:</h4>
<p>XSS on a static site, heh</p>



<a name="221538943"></a>
<h4><a href="https://rust-lang.zulipchat.com#narrow/stream/146229-wg-secure-code/topic/mdbook%20vulnerability/near/221538943" class="zl"><img src="https://rust-lang.github.io/zulip_archive/assets/img/zulip.svg" alt="view this post on Zulip" style="width:20px;height:20px;"></a> Alex Gaynor <a href="https://rust-lang.github.io/zulip_archive/stream/146229-wg-secure-code/topic/mdbook.20vulnerability.html#221538943">(Jan 04 2021 at 15:42)</a>:</h4>
<p>I've been in this industry too long. I see the description, I immediately triage it in my head and start applying labels.</p>



<a name="221593650"></a>
<h4><a href="https://rust-lang.zulipchat.com#narrow/stream/146229-wg-secure-code/topic/mdbook%20vulnerability/near/221593650" class="zl"><img src="https://rust-lang.github.io/zulip_archive/assets/img/zulip.svg" alt="view this post on Zulip" style="width:20px;height:20px;"></a> isHavvy <a href="https://rust-lang.github.io/zulip_archive/stream/146229-wg-secure-code/topic/mdbook.20vulnerability.html#221593650">(Jan 04 2021 at 23:08)</a>:</h4>
<p>You can put an mdbook onto a non-static site.</p>



<a name="221786838"></a>
<h4><a href="https://rust-lang.zulipchat.com#narrow/stream/146229-wg-secure-code/topic/mdbook%20vulnerability/near/221786838" class="zl"><img src="https://rust-lang.github.io/zulip_archive/assets/img/zulip.svg" alt="view this post on Zulip" style="width:20px;height:20px;"></a> Tony Arcieri <a href="https://rust-lang.github.io/zulip_archive/stream/146229-wg-secure-code/topic/mdbook.20vulnerability.html#221786838">(Jan 06 2021 at 16:17)</a>:</h4>
<p>yes, absolutely</p>



<hr><p>Last updated: Aug 07 2021 at 22:04 UTC</p>
</html>